conquer 4331 multi client

12/11/2006 20:13 Andrewp30#1
it should work. freshly edited for 4331. don't use it untill dec 11 after it is patched. copy and paste over old conquer.exe.

[Only registered and activated users can see links. Click Here To Register...]
12/11/2006 20:50 jaybrog#2
NOD32 and ClamWin didnt detect anything o.o

jotti,
File: Conquer_multi.rar
AntiVir
Found nothing
ArcaVir
Found nothing
Avast
Found nothing
AVG Antivirus
Found nothing
BitDefender
Found nothing
ClamAV
Found nothing
Dr.Web
Found nothing
F-Prot Antivirus
Found nothing
F-Secure Anti-Virus
Found nothing
Fortinet
Found nothing
Kaspersky Anti-Virus
Found nothing
NOD32
Found nothing
Norman Virus Control
Found nothing
VirusBuster
Found nothing
VBA32
Found nothing
12/11/2006 21:46 XxDarkKillaxX#3
new updated version of the scan.... close this thread and ban him please

STATUS: FINISHEDComplete scanning result of "Conquer.exe", received in VirusTotal at 12.12.2006, 00:57:03 (CET).

Antivirus Version Update Result
AntiVir 7.2.0.49 12.11.2006 no virus found
Authentium 4.93.8 12.11.2006 no virus found
Avast 4.7.892.0 12.11.2006 no virus found
AVG 386 12.11.2006 no virus found
BitDefender 7.2 12.11.2006 no virus found
CAT-QuickHeal 8.00 12.11.2006 no virus found
ClamAV devel-20060426 12.11.2006 no virus found
DrWeb 4.33 12.11.2006 no virus found
eSafe 7.0.14.0 12.11.2006 suspicious Trojan/Worm
eTrust-InoculateIT 23.73.81 12.09.2006 no virus found
eTrust-Vet 30.3.3244 12.11.2006 no virus found
Ewido 4.0 12.11.2006 no virus found
Fortinet 2.82.0.0 12.11.2006 suspicious
F-Prot 3.16f 12.11.2006 no virus found
F-Prot4 4.2.1.29 12.11.2006 no virus found
Ikarus T3.1.0.26 12.11.2006 no virus found
Kaspersky 4.0.2.24 12.12.2006 no virus found
McAfee 4916 12.11.2006 no virus found
Microsoft 1.1804 12.11.2006 no virus found
NOD32v2 1915 12.12.2006 no virus found
Norman 5.80.02 12.11.2006 no virus found
Panda 9.0.0.4 12.11.2006 no virus found
Prevx1 V2 12.12.2006 no virus found
Sophos 4.12.0 12.10.2006 no virus found
Sunbelt 2.2.907.0 11.30.2006 no virus found
TheHacker 6.0.3.131 12.10.2006 no virus found
UNA 1.83 12.11.2006 no virus found
VBA32 3.11.1 12.11.2006 no virus found
VirusBuster 4.3.15:9 12.11.2006 no virus found
12/11/2006 23:22 mindxspike#4
Why don't we see if these work before releasing them to everyone...It could immediately send people to bot jail, if TQ implemented something we don't quite know about.
12/11/2006 23:36 blueshad0vv#5
its good for this guy to post early, so noobs that do get bot jailed would be his test experiments to see if it works or not
12/12/2006 00:35 howaboutno#6
EDIT: VERIFIED TROJAN. Don't scan the rar, scan Conquer.exe in VirusTotal.





Hoooooold the phone guys.. always be skeptical of a 1st post! :p

My scan at Virus Total says its ridin' dirty.

Darkkilla, remember to make sure you aren't scanning the 'htm'! ;)


Complete scanning result of "Conquer_multi.rar", received in VirusTotal at 12.12.2006, 00:30:12 (CET).

Antivirus Version Update Result
AntiVir 7.2.0.49 12.11.2006 no virus found
Authentium 4.93.8 12.11.2006 no virus found
Avast 4.7.892.0 12.11.2006 no virus found
AVG 386 12.11.2006 no virus found
BitDefender 7.2 12.11.2006 no virus found
CAT-QuickHeal 8.00 12.11.2006 no virus found
ClamAV devel-20060426 12.11.2006 no virus found
DrWeb 4.33 12.11.2006 no virus found
eSafe 7.0.14.0 12.11.2006 suspicious Trojan/Worm
eTrust-InoculateIT 23.73.81 12.09.2006 no virus found
eTrust-Vet 30.3.3244 12.11.2006 no virus found
Ewido 4.0 12.11.2006 no virus found
Fortinet 2.82.0.0 12.11.2006 suspicious
F-Prot 3.16f 12.11.2006 no virus found
F-Prot4 4.2.1.29 12.11.2006 no virus found
Ikarus T3.1.0.26 12.11.2006 no virus found
Kaspersky 4.0.2.24 12.11.2006 no virus found
McAfee 4916 12.11.2006 no virus found
Microsoft 1.1804 12.11.2006 no virus found
NOD32v2 1915 12.12.2006 no virus found
Norman 5.80.02 12.11.2006 no virus found
Panda 9.0.0.4 12.11.2006 no virus found
Prevx1 V2 12.12.2006 no virus found
Sophos 4.12.0 12.10.2006 no virus found
Sunbelt 2.2.907.0 11.30.2006 no virus found
TheHacker 6.0.3.131 12.10.2006 no virus found
UNA 1.83 12.11.2006 no virus found
VBA32 3.11.1 12.11.2006 no virus found
VirusBuster 4.3.15:9 12.11.2006 no virus found


Aditional Information
File size: 378971 bytes
MD5: bc3018bb7feb6dc708f6041b3a820594
SHA1: c12a5652ba98c434cc08f9faf4d9ee07a70efe8c
packers: UPX
packers: UPX
packers: UPX
12/12/2006 00:48 XxDarkKillaxX#7
o lol opps new at the scanning thing
12/12/2006 00:58 andyd123#8
@howaboutno:

Looks like your wrong here buddy, if the file is packed there is a VERY high chance that the scanners output invalid data.

Its because they are packed, the file may seem bad to a scanner.

Ill look at it.

Edit: Jotti doesn't lie!
File: Conquer.exe
Status:
MIGHT BE INFECTED/MALWARE (Sandbox emulation took a long time and/or runtime packers were found, this is suspicious. Normally programs aren't packed and don't force the sandbox into lengthy emulation. Do realize no scanner issued any warning, the file can very well be harmless. Caution is advised, however.) (Note: this file has been scanned before. Therefore, this file's scan results will not be stored in the database)
MD5 3548c2aaa11a9e87ca1b9e9c01838322
Packers detected:
UPX
Scanner results
AntiVir
Found nothing
ArcaVir
Found nothing
Avast
Found nothing
AVG Antivirus
Found nothing
BitDefender
Found nothing
ClamAV
Found nothing
Dr.Web
Found nothing
F-Prot Antivirus
Found nothing
F-Secure Anti-Virus
Found nothing
Fortinet
Found nothing
Kaspersky Anti-Virus
Found nothing
NOD32
Found nothing
Norman Virus Control
Found nothing
VirusBuster
Found nothing
VBA32
Found nothing

It says it might be infected because the UPX pack.
12/12/2006 01:50 howaboutno#9
Quote:
Originally posted by andyd123@Dec 12 2006, 00:58
@howaboutno:

Looks like your wrong here buddy, if the file is packed there is a VERY high chance that the scanners output invalid data.


Thats as may be, andy... you know your stuff more than I..

Of course, I'd feel a lot better downloading one that didn't have a Malware warning, and a suspicious possible trojan and that wasn't somebody's first post.
12/12/2006 03:09 pjay#10
*stares at screen loading slowly*

hey look 11 pvper - liljack, ::Stewie::, aliendude, Simon_t, SelfIndulgence, thechaoshydra, kamus_sin, ~Templar~, iamcool321, Samuel, Jenkile
12/12/2006 03:53 Yedi#11
Well wow not only did I get mine out first... as far as I can tell it worked lol... and I wasn't foolish enough to try to hide a virus lol in my thread :) Glad thios guy was cought though
12/12/2006 03:58 pjay#12
i noticed something... that new programs are being created by noobs and are published in these fourms.... very suspicious. But anyways, hopefully we would be able to multi client without being sent to botjail :\
12/12/2006 04:03 Rorrim#13
hmm, try the unaltered exe, says the same exact thing XD